Threat Intelligence

Telus Digital affirms hack following ShinyHunters assertions

Plain code with the word "cyberattack" in red.

Telus Digital, the business process outsourcing and digital services arm of leading Canadian telecommunications firm Telus, has disclosed having certain systems impacted by a cybersecurity incident after the ShinyHunters cybercrime group alleged exfiltrating almost 1 petabyte of data as part of a months-long breach, reports BleepingComputer.

Additional security measures have already been adopted amid an ongoing probe into the intrusion, according to Telus Digital, which was noted to have rejected ShinyHunters' $65 million ransom demand for the stolen data. ShinyHunters claimed using Google Cloud Platform credentials obtained in the sweeping Salesloft Drift hack to infiltrate Telus Digital's systems, with the trufflehog cybersecurity tool then used to search for more credentials to access other systems for further data compromise.

Purportedly included in the 1 PB trove were information on Telus Digital's BPO and telecommunications services customers, such as FBI background checks, source code, Salesforce data, call data records, and campaign information.

Get daily email updates

SC Media's daily must-read of the most current and pressing daily news

By clicking the Subscribe button below, you agree to SC Media Terms of Use and Privacy Policy.

You can skip this ad in 5 seconds